URLhaus Database

You are currently viewing the URLhaus database entry for http://104.168.45.124/09/flx.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2355048
URL: http://104.168.45.124/09/flx.exe
URL Status:Offline
Host: 104.168.45.124
Date added:2022-10-10 08:59:05 UTC
Last online:2022-10-17 05:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2022-10-10 09:00:12 UTC to abuse{at}colocrossing[dot]com)
Takedown time:6 days, 20 hours, 10 minutes Bad (down since 2022-10-17 05:10:59 UTC)
Tags:exe opendir SnakeKeylogger link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-10-14n/aexe 3c78d5139a49e3f81272c1c7e7eae14f22ed3f7e89b8675663a574153d803eefVirustotal results 28.99%SnakeKeylogger
2022-10-12n/aexe 68869812f8a2684414348ecc16579fb740a8bfc179957641ee2c39db6ad271d1n/aSnakeKeylogger
2022-10-11n/aexe 7b3466885a3f5a38211cd4b6991a384b4a9d8747d5498f4762183e2a48a7fd23Virustotal results 27.78%SnakeKeylogger
2022-10-11n/aexe 552b11b82396419c3efd98ecb70657b2d7652d061bbd5d626e478812a65925een/aSnakeKeylogger
2022-10-10n/aexe df757778956e59dda13ed21877d89a7b55902f285c5958d248300e2e9cfffb83Virustotal results 21.54%SnakeKeylogger
2022-10-10n/aexe 6fd62542f92cfcd09af0b2ad8f007a9dc110d64c16cfaab24a9ffd6552a754e8Virustotal results 30.56%SnakeKeylogger